Medium severity6.5NVD Advisory· Published Jul 27, 2026· Updated Jul 28, 2026
CVE-2026-43804
CVE-2026-43804
Description
This issue was addressed through improved state management. This issue is fixed in Safari 26.6, iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, visionOS 26.6. Visiting a website may lead to an app denial-of-service.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*range: <26.6
- (no CPE)range: 26.6
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*range: >=26.0,<26.6
- (no CPE)range: 26.6
- Range: 26.6
Patches
Vulnerability mechanics
References
4- support.apple.com/en-us/128066nvdRelease NotesVendor Advisory
- support.apple.com/en-us/128067nvdRelease NotesVendor Advisory
- support.apple.com/en-us/128070nvdRelease NotesVendor Advisory
- support.apple.com/en-us/128073nvdRelease NotesVendor Advisory
News mentions
3- Apple Patches Everything (July 2026), (Wed, Jul 29th)SANS Internet Storm Center · Jul 29, 2026
- macOS Tahoe: 25 Security Flaws Patched in Single July 2026 DisclosureVypr Intelligence · Jul 27, 2026
- Apple iOS 26.6: 25 Vulnerabilities Patched, Including Memory Corruption and Sandbox EscapesVypr Intelligence · Jul 27, 2026